Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 15:59:06.800 00:00:10.367 TCP 23.104.0.1:39696 -> 1.101.0.1:3000 11 1507 1 2025-08-09 15:59:35.730 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48440 10 6452 1 2025-08-09 15:56:08.717 00:05:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:00:07.206 00:00:10.370 TCP 23.104.0.1:37096 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:00:38.945 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:00:39.037 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:00:35.940 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:47892 10 6452 1 2025-08-09 15:57:08.719 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:01:07.614 00:00:10.381 TCP 23.104.0.1:39028 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:01:36.181 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:49362 10 6452 1 2025-08-09 16:02:08.036 00:00:10.357 TCP 23.104.0.1:56464 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:02:36.408 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56202 10 6452 1 2025-08-09 16:03:08.431 00:00:10.359 TCP 23.104.0.1:55352 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:03:36.629 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58468 10 6452 1 2025-08-09 16:04:08.827 00:00:10.322 TCP 23.104.0.1:38916 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:04:36.803 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35802 10 6452 1 2025-08-09 16:05:09.191 00:00:10.368 TCP 23.104.0.1:48660 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:05:38.772 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:05:38.764 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:05:37.023 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:44116 10 6452 1 2025-08-09 16:02:08.722 00:05:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:06:09.593 00:00:10.369 TCP 23.104.0.1:48018 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:06:37.245 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:45400 10 6452 1 2025-08-09 16:03:08.725 00:05:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:07:10.003 00:00:10.359 TCP 23.104.0.1:37122 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:07:37.419 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50824 10 6452 1 2025-08-09 16:08:10.401 00:00:11.068 TCP 23.104.0.1:44442 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:08:37.632 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60242 10 6452 1 2025-08-09 16:09:11.511 00:00:10.364 TCP 23.104.0.1:56110 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:09:37.834 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57648 10 6452 1 2025-08-09 16:10:11.914 00:00:10.371 TCP 23.104.0.1:33344 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:10:38.865 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:10:38.844 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:10:38.076 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44706 10 6452 1 2025-08-09 16:11:12.329 00:00:10.366 TCP 23.104.0.1:53940 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:11:38.292 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34858 10 6452 1 2025-08-09 16:08:08.727 00:05:00.785 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:12:12.733 00:00:10.328 TCP 23.104.0.1:54654 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:12:38.509 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46990 10 6452 1 2025-08-09 16:09:08.728 00:05:00.780 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:13:13.102 00:00:10.369 TCP 23.104.0.1:57198 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:13:38.722 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52240 10 6452 1 2025-08-09 16:14:13.507 00:00:10.322 TCP 23.104.0.1:41514 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:14:38.939 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:47018 10 6452 1 2025-08-09 16:15:13.866 00:00:10.371 TCP 23.104.0.1:39866 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:15:39.139 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:15:39.007 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:15:39.182 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38154 10 6452 1 2025-08-09 16:16:14.275 00:00:10.368 TCP 23.104.0.1:57168 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:16:39.389 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57240 10 6452 1 2025-08-09 16:17:14.674 00:00:10.367 TCP 23.104.0.1:48064 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:17:39.601 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43566 10 6452 1 2025-08-09 16:14:08.727 00:05:00.786 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:18:15.131 00:00:10.364 TCP 23.104.0.1:52038 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:18:39.815 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55010 10 6452 1 2025-08-09 16:15:08.731 00:05:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:19:15.532 00:00:10.374 TCP 23.104.0.1:59008 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:19:40.037 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56330 10 6452 1 2025-08-09 16:20:15.944 00:00:10.372 TCP 23.104.0.1:43950 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:20:39.009 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:20:39.107 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:20:40.210 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59982 10 6452 1 2025-08-09 16:21:16.353 00:00:10.366 TCP 23.104.0.1:52212 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:21:40.434 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:58658 10 6452 1 2025-08-09 16:22:16.759 00:00:10.386 TCP 23.104.0.1:60198 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:22:40.628 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54052 10 6452 1 2025-08-09 16:23:17.187 00:00:10.324 TCP 23.104.0.1:48062 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:23:40.803 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:33196 12 10367 1 2025-08-09 16:20:08.731 00:05:00.785 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:24:17.552 00:00:10.440 TCP 23.104.0.1:34554 -> 1.101.0.1:3000 15 1926 1 2025-08-09 16:24:41.072 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45738 10 6452 1 2025-08-09 16:21:08.736 00:05:00.779 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:25:18.033 00:00:10.363 TCP 23.104.0.1:58510 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:25:39.327 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:25:39.056 00:00:00.042 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:25:41.296 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59464 10 6452 1 2025-08-09 16:26:18.438 00:00:10.363 TCP 23.104.0.1:34762 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:26:41.508 00:00:10.521 TCP 1.101.0.1:3000 -> 22.102.0.1:59610 10 6452 1 2025-08-09 16:27:18.852 00:00:10.376 TCP 23.104.0.1:34716 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:27:42.077 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55018 10 6452 1 2025-08-09 16:28:19.268 00:00:10.367 TCP 23.104.0.1:38340 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:28:42.247 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46398 10 6452 1 2025-08-09 16:29:19.676 00:00:10.365 TCP 23.104.0.1:38430 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:29:42.459 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53934 10 6452 1 2025-08-09 16:26:08.733 00:05:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:30:20.124 00:00:10.370 TCP 23.104.0.1:59672 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:30:39.003 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:30:39.305 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:30:42.669 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35148 10 6452 1 2025-08-09 16:27:08.736 00:05:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:31:20.534 00:00:10.371 TCP 23.104.0.1:35590 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:31:42.878 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60494 10 6452 1 2025-08-09 16:32:20.953 00:00:10.338 TCP 23.104.0.1:38322 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:32:43.100 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57694 10 6452 1 2025-08-09 16:33:21.331 00:00:10.368 TCP 23.104.0.1:48810 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:33:43.310 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:55100 12 10367 1 2025-08-09 16:34:21.742 00:00:10.400 TCP 23.104.0.1:40902 -> 1.101.0.1:3000 15 1926 1 2025-08-09 16:34:43.551 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56098 10 6452 1 2025-08-09 16:35:22.184 00:00:10.323 TCP 23.104.0.1:45152 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:35:39.336 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:35:39.438 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:35:43.767 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53796 10 6452 1 2025-08-09 16:32:08.735 00:05:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:36:22.547 00:00:10.323 TCP 23.104.0.1:52936 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:36:43.977 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:37414 10 6452 1 2025-08-09 16:33:08.738 00:05:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:37:22.912 00:00:10.322 TCP 23.104.0.1:32906 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:37:44.167 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50698 10 6452 1 2025-08-09 16:38:23.277 00:00:10.362 TCP 23.104.0.1:41110 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:38:44.380 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33510 10 6452 1 2025-08-09 16:39:23.679 00:00:10.368 TCP 23.104.0.1:34036 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:39:44.597 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60268 10 6452 1 2025-08-09 16:40:24.104 00:00:10.365 TCP 23.104.0.1:51612 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:40:39.271 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:40:39.339 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:40:44.812 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43876 10 6452 1 2025-08-09 16:41:24.509 00:00:10.579 TCP 23.104.0.1:43024 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:41:45.029 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:53892 10 6452 1 2025-08-09 16:38:08.736 00:05:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:42:25.127 00:00:10.361 TCP 23.104.0.1:38022 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:42:45.238 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:48456 10 6452 1 2025-08-09 16:39:08.739 00:05:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:43:25.527 00:00:10.379 TCP 23.104.0.1:53380 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:43:45.408 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:49508 12 10367 1 2025-08-09 16:44:25.946 00:00:10.447 TCP 23.104.0.1:54376 -> 1.101.0.1:3000 15 1926 1 2025-08-09 16:44:45.648 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39334 10 6452 1 2025-08-09 16:45:26.427 00:00:10.366 TCP 23.104.0.1:46666 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:45:39.297 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:45:39.399 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:45:45.819 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:42586 10 6452 1 2025-08-09 16:46:26.827 00:00:10.387 TCP 23.104.0.1:58638 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:46:46.043 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48688 10 6452 1 2025-08-09 16:47:27.256 00:00:10.362 TCP 23.104.0.1:37348 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:47:46.257 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58738 10 6452 1 2025-08-09 16:44:08.736 00:05:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:48:27.655 00:00:10.367 TCP 23.104.0.1:54718 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:48:46.469 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53176 10 6452 1 2025-08-09 16:45:08.740 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:49:28.083 00:00:10.368 TCP 23.104.0.1:42754 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:49:46.704 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35422 10 6452 1 2025-08-09 16:50:39.578 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:50:28.488 00:00:10.366 TCP 23.104.0.1:43068 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:50:39.496 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:50:46.919 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:60398 10 6452 1 2025-08-09 16:51:28.896 00:00:10.365 TCP 23.104.0.1:59150 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:51:47.155 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53630 10 6452 1 2025-08-09 16:52:29.302 00:00:10.366 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:52:47.374 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53820 10 6452 1 2025-08-09 16:53:29.707 00:00:10.324 TCP 23.104.0.1:58338 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:53:47.582 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49866 10 6452 1 2025-08-09 16:50:08.737 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-09 16:54:30.094 00:00:10.364 TCP 23.104.0.1:34548 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:54:47.791 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54556 10 6452 1 2025-08-09 16:51:08.740 00:05:00.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-09 16:55:39.918 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-09 16:55:30.510 00:00:10.360 TCP 23.104.0.1:43642 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:55:39.809 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-09 16:55:48.009 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60414 10 6452 1 2025-08-09 16:56:30.913 00:00:10.361 TCP 23.104.0.1:35252 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:56:48.229 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51392 10 6452 1 2025-08-09 16:57:31.315 00:00:10.325 TCP 23.104.0.1:42510 -> 1.101.0.1:3000 11 1507 1 2025-08-09 16:57:48.445 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57678 10 6452 1 2025-08-09 16:58:31.684 00:00:10.366 TCP 23.104.0.1:48870 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 504898, total packets: 1580, avg bps: 1076, avg pps: 0, avg bpp: 319 Time window: 2025-08-09 15:56:08 - 2025-08-09 16:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0040s User: 0.0020s Wall: 0.0029s flows/second: 55331.1 Runtime: 0.0030s